HNNCast.2010.06.11
HNNCast for the second week of June, 2010
Lead Stories
- GoatSec’s Finding, Digital Dribble, Another Flash-hole, IIS and PHP Attacks, Lamos Labeled
News
- Hardware Slammer, Olympic Goof, Gaza Fallout
- Courtnee: HacKid Con
- HP Helps Bletchey, These Are Not the Droids but this Is the Talk, B-Sides Multiplies
Tool Time
- Spiderpig, PDF Dissector, OllyDbg 2.0, POET, WhitePhosphorus, ArpOn, SysInternals Updates, Android Blue-box
Quickies
- NATO Needs C.A.L.T., Billionaire Polluters, DHS Mergers, Stay Smart Down Under – Mmk? Batches of Patches, unLucky Greeks, ScaMS, University of Breach, the Weekly Cons Call
Stack of Shame
- count: 133
One Response to 'HNNCast.2010.06.11'
Subscribe to comments with RSS or TrackBack to 'HNNCast.2010.06.11'.
Leave a Reply
You must be logged in to post a comment.
Posted: June 13th, 2010
at 7:44am by tan
Tagged with "cross-site scripting", "Dan Kaminsky", "New York Times", "These are not the Droids you are looking for", Acrobat, Adobe, Adrian Lamo, andriod, Apple, ArpOn, ASP, AT&T, autorun, AutoRuns, B-Sides, Bletchey Park, bluebox, BP, breach, CanSecWest, Canvas, CAPTCHA, CBC-mode encryption, Chrome, CS&C, Defcon 18, Dept. of Homeland Security, DHS, Digital River, ExcaliburCon, Facebook, Fake Anti-Virus, FBI, Flash, FRYOM, Gaza, Glassfish, Goatse, GoDaddy, Gogle, Google, HacKid Con, Hashdays, holistic infosec, Hotel Pennsylvania, HP, IBM, ICCID, IDF, IIS, Immunity, iPad, Israel, javascript, Jerusalem Post, JSF, Julian Assange, Linux, Lucky, Mac, Macedonian Dark Security, malware, microSD, National Cyber Security Awareness Week, NATO, OIP, OllyDbg 2.0, Olympus, PDF, PDF Dissector, Penn State University, PHP, POET, ProcDump, Process Explorer, Re-Con, Reader, rootkit, Safari, Samsung, SigCheck, SMS, Solaris, Specialist Brad Manning, Spiderpig, sql injection, Stay Smart Online, Strathcycle Police Dept., Stylus Tough 6010, Sun, SysInternals, TechNet, the Next HOPE, Trojan, Tufts University, Turkey, virus, Wall Street Journal, Wave, WHitePhosphorus, WikiLeaks, Windows, Wordpress, XSS, ZDI, Zero Day Initiative, Zynamics
Comments: 1 comment










Lead Stories
GoatSec’s Finding
http://gawker.com/5559346/
Digital Dribble
http://www.theregister.co.uk/2010/06/04/digital_river_hack/
Another Flash-hole
http://www.macworld.com/article/151798/2010/06/flash_bug.html?lsrc=rss_topics_security
http://www.adobe.com/support/security/advisories/apsa10-01.html
IIS and PHP Attacks
http://www.theregister.co.uk/2010/06/09/mass_webpage_attack/
http://blog.sucuri.net/2010/06/godaddy-sites-hacked-with-cloudisthebestnow.html
http://www.heraldscotland.com/news/crime-courts/police-website-shut-amid-hacker-fears-1.1033505
http://www.theregister.co.uk/2010/06/08/jerusalem_post_malware/
Lamos Labeled
http://news.bbc.co.uk/2/hi/technology/10255887.stm
News
Hardware Slammer
http://threatpost.com/en_us/blogs/samsung-handsets-distributed-malware-infected-memory-cards-060410
Olympic Goof
http://www.sophos.com/blogs/gc/g/2010/06/08/olympus-stylus-tough-camera-carries-malware-infection/
Gaza Fallout
http://www.timesonline.co.uk/tol/news/world/article7144856.ece
http://www.thebostonchannel.com/news/23793744/detail.html
http://www.darkreading.com/blog/archives/2010/06/facebook_accoun.html
Courtnee: HacKid Con
HP Helps Bletchey
http://news.bbc.co.uk/2/hi/uk/10239623.stm
These Are Not the Droids but this Is the Talk
http://www.defcon.org/html/defcon-18/dc-18-speakers.html#Percoco1
B-Sides Multiplies
http://www.securitybsides.com/
Tool Time
http://code.google.com/p/spiderpig-pdffuzzer/downloads/detail?name=spiderpig.tar.gz&can=2&q=
http://www.zynamics.com/dissector.html
http://www.google.com/url?sa=t&source=web&cd=1&ved=0CB4QFjAA&url=http%3A%2F%2Fwww.ollydbg.de%2F&ei=280UTOnFOYKclgefrODlDA&usg=AFQjCNEzoCs-yODX64qjW-RiNUC7DoKECA&sig2=OYHmCuuaohm9p_0J0NaPDg
http://netifera.com/research/
http://www.immunityinc.com/products-whitephosphorus.shtml
http://arpon.sourceforge.net/
http://technet.microsoft.com/en-us/sysinternals/bb842062.aspx
http://code.google.com/p/android-bluebox/
Quickies
http://xssed.com/news/106/BP.com_defaced_with_XSS_to_show_Gulf_of_Mexico_oil_spill_protesters/
http://www.israelnationalnews.com/News/News.aspx/137879
http://www.securitymanagement.com/news/dhs-may-merge-infrastructure-protection-cybersecurity-units-official-says-007236
http://www.staysmartonline.gov.au/news/news_articles/regular/national_cyber_security_week
http://threatpost.com/en_us/blogs/patch-tuesday-microsoft-kills-pwn2own-browser-bug-060810
http://www.h-online.com/security/news/item/Google-pays-2-000-for-report-of-a-vulnerability-in-Chrome-1018495.html
http://news.cnet.com/8301-27080_3-20007126-245.html
http://www.focus-fen.net/index.php?id=n221768
http://www.theregister.co.uk/2010/06/09/malaysian_sms_scam_ring/
http://www.esecurityplanet.com/trends/article.php/3886516/Botnet-Takes-Control-of-Penn-State-Computer.htm
http://www.boston.com/news/education/higher/articles/2010/06/09/letters_to_tufts_alumni_warn_of_security_breach/
http://www.newcamelotcouncil.com/eng/news.asp
http://www.recon.cx/
https://www.hashdays.ch/
http://www.2600.com/news/view/article/11960
http://www.2600.com/news/view/article/11955
Stack of Shame
http://www.zerodayinitiative.com/advisories/upcoming/
tan
13 Jun 10 at 8:27 am